---
title: "Configuring Access Authentication"
canonical: "https://docs.infoblox.com/space/BloxOneCloud/9405074/Configuring%20Access%20Authentication"
format: markdown
---
<span style="color: #000000">To configure automated security policy management using access authentication, complete the following steps:</span>

1. <span style="color: #000000">Set up the IdP you plan to use and create applications and user group attributes in the IdP. Refer to the respective vendor documentation for details.</span>
2. <span style="color: #000000"> Review the prerequisites for using different protocols and IdPs. For more information, see </span>[*<span style="color: #000000">Prerequisites for Configuring Access Authentication</span>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35430215)<span style="color: #000000">.</span>
3. <span style="color: #000000">Create an access authentication profile that defines the protocol and IdP you want to use. For more information, see </span>[*<span style="color: #000000">Configuring Authentication Profiles</span>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35462918)<span style="color: #000000">.</span>
4. <span style="color: #000000">Enable the access authentication and DNS forwarding proxy services on the on-prem host to which you want to apply security policies. For more information, see </span>*[<span style="color: #000000">Enabling and Disabling Services on On-Prem Host</span>](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=DeleteOld&title=Enabling%20and%20Disabling%20Services%20on%20Hosts)*[<span style="color: #000000">s</span>](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=DeleteOld&title=Enabling%20and%20Disabling%20Services%20on%20Hosts)<span style="color: #000000">.</span>
5. <span style="color: #000000">Configure the access authentication service on the on-prem host by adding an authentication profile you want to use. For more information, see </span>*[<span style="color: #000000">Configuring Authentication Profiles for On-Prem Hosts</span>](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35365761)*<span style="color: #000000">.</span>
6. <span style="color: #000000">Obtain the admin token and domain from the third-party IdP you have selected in the authentication profile. Depending on the IdP, refer to the respective vendor documentation on how to obtain the admin token and domain.</span>
7. <span style="color: #000000">Synchronize user groups from the third-party IdP using the admin token and domain you retrieved from the IdP. For more information, see </span>[*<span style="color: #000000">Synchronizing User Groups</span>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35397703)<span style="color: #000000">.</span>
8. <span style="color: #000000">Create or modify security policies to include specific user groups to which you want to apply the security policies. For more information, see </span>[*<span style="color: #000000">Creating Security Policies</span>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35469750)*<span style="color: #000000">.</span>*

<span style="color: #000000">For more information about access authentication, see the following:</span>

- [<span style="color: #000000">*Managing Access Authentication*</span>](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35396331)
- [<span style="color: #000000">*Prerequisites for Configuring Access Authentication*</span>](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35430215)
- [<span style="color: #000000">*Configuring Authentication Profiles*</span>](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35462918)
- [<span style="color: #000000">*Configuring Authentication Settings*</span>](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35463149)
- [*<span style="color: #000000">Synchronizing User Groups</span>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35397703)